Source description
About the role
At EY, were all in to shape your future with confidence. Well help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world. EY- Cyber Security (AEET) Consulting Senior As part of our EY-Cyber security in the Consulting team, your role will be primarily responsible for the daily monitoring and/or maintenance of the NAC (Network Access Control), Firewall, Proxy, VPN and WAF (Web Application Firewall) solutions. The main duties of the person in this role will include proper care and administration of the NAC and Firewall tools, monitoring and responding to the alerts that generate from the tool. This person will interface with IT Operations, Network Operations, Infrastructure teams, Legal, Risk Management, etc. The opportunity Were looking for Senior Security consultant in the Consulting team to work on various infrastructure and Network Security related projects for our customers across the globe. In line with EYs commitment to quality, consultant shall confirm that work is of the highest quality as per EYs quality standards and is reviewed by the next-level reviewer. As an influential member of the team, consultant shall help to create a positive learning culture, coach and counsel junior team members and help them to develop. Your Key Responsibilities Maintain and troubleshoot Firewall, NAC, Proxy and WAF solutions to safeguard network traffic flow,Monitor and respond to the security alerts triggered for Firewall, NAC, Proxy and WAF security solution.Lead deployment, configuration, and administration of NAC solutions such as:Cisco ISE, Aruba ClearPass, ForeScout, Pulse Policy Secure, or other enterprise NAC platforms.Manage onboarding workflows for wired, wireless, and VPN endpoints.Create and maintain NAC policies, authentication rules, profiling, and posture assessments.Troubleshoot NAC related issues for end users, endpoints, and network devices.Oversee certificate based authentication (EAP TLS), 802.1X, and RADIUS/TACACS+ configurations.Conduct periodic audits of endpoint compliance and device health posture.Collaborate with cross-functional teams to integrate security solutions and ensure seamless operations.Monitor and analyse security incidents, responding promptly to security breaches and user incidents.Stay updated on industry best practices and emerging security threats, adapting security protocols as needed.Troubleshoot and resolve security-related issues in a timely manner.Continuously improve and optimize security processes and procedures to enhance efficiency and effectiveness. Skills And Attributes For Success Should be a good team player.Excellent verbal and written communication skill.Proficient Documentation and Power Point skillsGood social, communication and technical writing skillsStrong analytical/problem solving skills.Ability to prioritize tasks and work accurately under pressure to meet deadlines.Should understand and follow workplace policies and procedures. To qualify for the role, you must have Bachelors degree in computer science, Information Security, or a related field.3 to 6 years of professional experience in information security with a focus on Firewall, Proxy and WAF security, security incident management.Strong experience with Cisco ISE, Aruba ClearPass, ForeScout, or equivalent NAC platforms.Solid understanding of 802.1X, RADIUS, TACACS+, EAP, PKI, and certificate based authentication.Strong knowledge of network protocols (TCP/IP, DHCP, DNS, VLANs, routing, switching).Familiarity with network security technologiesNGFW, VPN, IDS/IPS, and endpoint security.Should have deep knowledge on ITIL process.Handle security incidents as L1/L2.Strong understanding of Zscaler Proxy, Firewalls, WAF solution and technology.Experience with incident handling process and risk mitigation.Experience of WAF security solution alerts and triaging based on security impact and business requirement.Setting up access controls and policies to govern who can access, modify, or delete protected data.Ensuring that data security practices align with regulatory compliance requirements, industry standards, and specific organizational policies.Relevant certifications such as PCNSA, PCNSE, or relevant certificates are a plus.Proficiency in security tools and technologies.Excellent problem-solving skills and attention to detail.Strong communication and teamwork skills.Ability to work independently and manage multiple tasks.Willingness to stay current with evolving security technologies and threats.Ability to communicate in a clear and concise manner. Ideally, youll also have Professional certificate or be actively pursuing related professional certifications such as the CompTIA Security+, CEH, CISSP or Vendor/Technical certification. If not, certified candidates are expected to complete one of the business required certifications within 12 months of hire.To expect some At EY,
More at EY